I’m the Never Ending Pie Throwing Robot, aka NEPTR.

Linux enthusiast, programmer, and privacy advocate. I’m nearly done with an IT Security degree.

TL;DR I am a nerd.

  • 0 Posts
  • 12 Comments
Joined 3 months ago
cake
Cake day: November 20th, 2024

help-circle






  • N.E.P.T.R@lemmy.blahaj.zonetolinuxmemes@lemmy.worldExe in a bottle
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    3
    ·
    8 hours ago

    That isnt a great defense against malware “imho”. Security through assuming the threat actor is lazy is just not security. It doesnt take like any effort on their part to just use some off-the-shelf OS fingerprinting code. It isnt worth it either because it contributes to your overall fingerprint, since normal RFP users have a standardized useragent for Windows and Linux separately.


  • N.E.P.T.R@lemmy.blahaj.zonetolinuxmemes@lemmy.worldExe in a bottle
    link
    fedilink
    English
    arrow-up
    2
    arrow-down
    3
    ·
    8 hours ago

    Firstly there is no need to be condescending.

    Secondly, do you block all JS? NoScript is not a silver bullet and doesnt stop fingerprinting, it is itself identified by the CreepJS test site. It may in this case reduce the chance of OS fingerprinting, but pure CSS methods exist as well.

    Additionally, NoScript is laregly redundant with uBlock Origin since you can do everything that it offers, such as blocking 3rd party scripts/iframes/all, block fonts, block JS, and it is very granular.

    Bottom line, you are fingerpintable.


  • N.E.P.T.R@lemmy.blahaj.zonetolinuxmemes@lemmy.worldExe in a bottle
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    2
    ·
    edit-2
    12 hours ago

    It is trivial to identify OS platform because browser work differently on each platform. Wjat Librewolf does with useragent on Linux actually is makes users stand out more because it isn’t what privacy.resistFingerprinting (RFP) reports on normally.

    Hackers (like the comment scenario i was responding to) are substantially more likely to employ platform fingerprint than trust a fale useragent. And loads general websites employ fingerprinting, meaning deviation from default RFP behaviour makes you stand out (more than you already do by using RFP since it is a small pool already).